ManageEngine® Firewall Analyzer 7.0 Service Pack 6 Read Me

Note: If you are trying to apply more than one service pack at a time, you need to restart the Firewall Analyzer Server after applying each service pack and check whether your data is intact in the web client. If you don't have any issues, continue applying the other service pack. If you find any issues, do not continue applying the other service pack and contact fwanalyzer-support@manageengine.com
The feature enhancements and bug fixes in this Service Pack upgrade are listed below.

7.6 - Build 7600 - Distributed Edition

GA release of Firewall Analyzer Distributed Edition.

New Features - Admin Server

There are no new features available for Admin Server in this release

New Features - Collector Server

The general features available in this release include,

7.6 - Build 7600 -Standalone Edition

The general features available in this release are:

New Features

    1. New Devices supported:
      • FortiGate - FortiOS 5.x logs supported
      • NetASQ
      • PaloAlto - Application reports
      • Bluecoat - Virus reports
    1. Option to identify non standard protocols (Unknown Protocol) detail in your network.
    2. Email alert notification when Firewall Analyzer fails to write the logs in archive
    3. SFTP/SSH protocol support to import logs from remote machines
    4. Optionally, traffic logs can be indexed and searched
    5. Advanced Search can now be used to find the exact Port/Protocol details
    6. Showing the conversation (source/destination/protocol) details for anomaly alert in mail
    7. Troubleshooting tool to apply License file in case of product license expiry
    8. Users with 'Guest' privilege can now access the'Compliance' tab
    9. Firewall Analyzer will henceforth be using PostgresSQL database

Bug Fix

    1. Wrong alert message showing double the number of managed devices compared to the License count has been fixed
    2. Fixed the Windows Authentication issue in Admin server MS SQL setup
    3. SonicWALL device interface name parsing issue is fixed
    4. Fixed the issue to retain the Y-axis value as integer in Time Series graph in PDF export
    5. Allowed URL reports will now be populated for Palo Alto devices
    6. Parsing issue of Juniper SSL logs fixed
    7. Native OS (German and French) Installation issue fixed
    8. 'DisplayName' of the device will be shown now in Change Management alerts, Anomaly alerts and Compliance reports instead of 'ResourceName'

 

7.4 - Build 7400 - Distributed Edition

GA release of Firewall Analyzer Distributed Edition.

New Features - Admin Server

The general features available in this release include,

New Features - Collector Server

The general features available in this release include,

7.4 - Build 7400 - Standalone Edition

The general features available in this release are:

New Features

  1. Supports 'IPFIX with extensions' based flows (for SonicOS 5.8) - reports include top URLs, applications, users, viruses, attacks, intrusions, spyware, etc.
  2. Dedicated compliance section for device rules configurations, firewall rules monitoring, change management reports and alerts
  3. Detailed reports for applications accessed through Check Point and SonicWALL devices
  4. Consolidated VPN traffic reports for user-groups
  5. 'Exclude criteria' option now allows users to generate configuration change management reports that excludes certain specific lines or text
  6. Importing 'Local Host' log directory is now supported
  7. 'Intranet Settings' can now be configured for multiple devices
  8. For FTP log import from remote hosts, in addition to specifying time interval users can now specify 'Schedule Start Time'
  9. 'Scheduled Reports' can be now saved in the machine running Firewall Analyzer
  10. Active Directory or RADIUS can be set as default authentication for Firewall Analyzer login
  11. Active Directory Users can now be imported at the Organizational Unit level, Group level and Individual User level
Bug Fix
  1. Fixed indexing of Juniper IDP attack logs
  2. Increased the default value of row count of reports in PDF format from 10 to 100
  3. Fixed the usability issue in Scheduling Device Rule
  4. Fixed the Parser Rule issue for Cisco Message Id 713119
  5. Fixed Change Management Alert issue when difference in configuration content has dollar symbol in it
  6. Fixed the 'device credentials test button' issue
  7. Fixed issue in detecting dynamic file name changes, during scheduled import
  8. The issue with 'SNMP community string with special characters' to access the interface is fixed
  9. The issue in parsing unused ACEs of Cisco firewall is fixed

 

 

7.2 - Build 7021 - Standalone Edition

The bug fix available in this release are:

Bug Fix

 

Build 7020 - Distributed Edition

GA release of Firewall Analyzer Distributed Edition.

New Features - Collector Server

The general features available in this release include,

Build 7020 - Standalone Edition

GA release of Firewall Analyzer Standalone Edition.

New Features and Enhancements

  1. New Device/Log Format supported
  2. Application reports for Fortigate firewalls based on Application Control service
  3. Support for Virtual Firewalls of Cisco and Fortigate devices. By default, each context/vdom is displayed as separate device
  4. Alerts based on bandwidth utilization of a specific interfaces
  5. Client UI and email notification for Firewall Status Alerts for the following conditions:
  6. View unused ACEs details of ACLs, for Cisco devices available in Unused Rules report
  7. Real-time Syslog collection from Squid proxy server supported
  8. Complete time duration details of the VPN user sessions available in 'VPN User Session Details' reports under VPN Reports
  9. Option to export 'VPN User Session Details' report to other formats, while clicking 'View All' link
  10. Zone based and interface specific Live reports using SNMP for Netscreen devices
  11. Change Management Report for Juniper SRX device available
  12. Option to fetch Rules and Configurations for any CLI supported device to get Unused Rules, Compliance and Change Management reports
  13. New format for Email alert to cater for context based Configuration Changes
  14. Optional privilege available to 'Guest' user to view the generated alerts for the assigned device(s)
  15. Optional privilege available to 'Guest' user to view the Report Profile(s) assigned by Administrators  

Bug Fixes

  1. Identifying Device IP address from the logs imported from Blue Coat proxy server
  2. Collecting intermittent logs of VPN sessions support for Sonicwall, Cisco, Checkpoint and Netscreen Firewall
  3. devices
  4. Added page navigation component in 'Raw Log Search' result page
  5. Importing log files with non-English names/folders from remote machines using FTP is supported
  6. Allowed special characters in SNMP Community string
  7. to fetch SNMP data from devices
  8. Issue in Diagnose Connections when the interface name had special characters

ManageEngine Firewall Analyzer © 2013 ZOHO Corp. All Rights Reserved.